Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 21 Jun 2005 12:52:01 +0000 (UTC)
From:      "Sergey A. Osokin" <osa@FreeBSD.org>
To:        ports-committers@FreeBSD.org, cvs-ports@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   cvs commit: ports/security/sudo Makefile distinfo
Message-ID:  <200506211252.j5LCq1VB040407@repoman.freebsd.org>

next in thread | raw e-mail | index | archive | help
osa         2005-06-21 12:52:01 UTC

  FreeBSD ports repository

  Modified files:
    security/sudo        Makefile distinfo 
  Log:
  Security update to latest release: 1.6.8p9.
  
  <Security Alert>
  Summary:
  A race condition in Sudo's command pathname handling prior
  to Sudo version 1.6.8p9 that could allow a user with Sudo
  privileges to run arbitrary commands.
  Sudo versions affected:
  Sudo versions 1.3.1 up to and including 1.6.8p8.
  </Security Alert>
  
  More information about this incident available at:
  http://www.sudo.ws/sudo/alerts/path_race.html
  
  Revision  Changes    Path
  1.74      +2 -2      ports/security/sudo/Makefile
  1.47      +2 -2      ports/security/sudo/distinfo



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200506211252.j5LCq1VB040407>